cancel
Showing results for 
Search instead for 
Did you mean: 
Reply

Breaking inheritance with Flow/PowerAutomate on a folder

Hello,

 

Trying power automate/Flow, i try to solve an issue.

My goal :

  1. Read an excel table (with student's mail),
  2. Create a folder with name "student mail", for each student, in a folder of a team,
  3. Remove members access,
  4. Grant access to the specific student and me.

The point 3 makes me cry as you can see on the captures. I am a owner of the team.

 

Capture 1 : http://tondamrik.free.fr/img1.png

Capture 2 : http://tondamrik.free.fr/img2.png

 

Probably, i misunderstand something but what ?

 

Thanks for your precious help.

 

1 ACCEPTED SOLUTION

Accepted Solutions

Hi, you are right there is an action 'Stop sharing an item or file' but you can't use a folder as an item for this action.
Hope it helps, please like it or mark it as a solution if it resolves your clarification or issue
-Sudharsan K...

View solution in original post

16 REPLIES 16

Hi, you had mentioned folder. Where is the folder? whether you are mentioning the folders in the SharePoint list or something. Also, the link to the images are broken.
Hope it helps, please like it or mark it as a solution if it resolves your clarification or issue
-Sudharsan K...

Hello @sudharsan1985 ,

 

First, thanks four your answer : links are able now.

 

In fact, i want to create a folder in tab "Files" of a channel in Teams. It works but it is shared with all members (students) and i want it shared only with one of them.
But i am not able to change permissions of this new folder.

My goal is to have a flow that creates a folder only shared with a student and me, for each student.

Hope, you'll see what i mean... 😕

Hi @ArnaudB 

The images are working now but I am sorry, I couldn't understand the language. Creating folders in the Files tab of the Teams Channel is nothing but creating the folder in the Teams associated SharePoint site. Before assigning the permissions or removing the permissions, you have to break the inheritance of the permission from the parent.

 

1. Please use the 'Send HTTP...' SharePoint action to break the inheritance and clear all the inherited permissions like shown below

image.png

 2. To find the role definition id, here I find the Contribute permission level id to assign to the user.

image.png

 3. The next step is to find the User's id, by using the action mentioned below. You have to pass the user's claims value to get the ID.

image.png

4Assign the permission to the user using user id and the role definition idimage.png

 

If everything goes well, only you and the student should see the folder. Try it and let us know if you have any issues.

 

 

Hope it helps, please like it or mark it as a solution if it resolves your clarification or issue
-Sudharsan K...


@sudharsan1985 wrote:

Hi @ArnaudB 

The images are working now but I am sorry, I couldn't understand the language. Creating folders in the Files tab of the Teams Channel is nothing but creating the folder in the Teams associated SharePoint site. Before assigning the permissions or removing the permissions, you have to break the inheritance of the permission from the parent.

 


I agree with the first point (Folder in Files tab in Teams = folder in SharePoint Site) ;-).
I have just thought that breaking inheritance could be done with the Flow "block" (?) : STOP SHARING A FILE as said in many docs and tutos.

There is here something with i don't figure out / don't understand.

And... thanks a lot to try understand my langage. Sorry.

 

Hi, you are right there is an action 'Stop sharing an item or file' but you can't use a folder as an item for this action.
Hope it helps, please like it or mark it as a solution if it resolves your clarification or issue
-Sudharsan K...

Hello @sudharsan1985 !

 

Aaaahh, that's why it doesn't work !
So i may go around  : one folder by student with access for all (inheritance) but each new file in the folder of student XXX is a trigger for stopping sharing this new file and granting specific access. It sounds to me like an acceptable solution. I will try.

 

Thanks for your time and precious advices.

Arnaud.

Hi, if you restrict the folder to yourself and the student, then the files inside the folder will inherit the permission of the folder by default and there is no need to break the inheritance of each file and do the same.
Hope it helps, please like it or mark it as a solution if it resolves your clarification or issue
-Sudharsan K...

I understand and i am able (i think) to do it with your advices, but all the teachers around me will not be able except if i use dynamic variables in the script and share it with them... hmmm... I will consider this possibility ;-).

 

Thanks.

Hello @sudharsan1985 

 

If you have time, i would like to have some explanations. I have 2 possibilities.

 

Possibility 1:

  1. The teacher creates an xlsx file with students's email and saves it on his OneDrive Business.
  2. Flow gets O365 teacher's profil...
  3. ... and lists rows in the xlsx file on teacher's drive.
  4. For each loop : CREATE A FOLDER named with students's email (or name from xlsx file);

 

The next step is to break inheritance on the folder and grant edit access to the students. But these actions need to get new folder'ID : i don't know how. On your captures, i can read  : 'list name' in the API REST. What is it please ?

 

Possibility 2 :

  1. The teacher creates manually a folder named DEPOT_DE_TRAVAUX and manually restrict the access (no access for visitors and members) : so, each new folder created in it can be view/edit only by the teacher and the student by inheritance.
  2. The teacher creates an xlsx file with students's email and saves it on his OneDrive Business.
  3. Flow gets O365 teacher's profil... ... and lists rows in the xlsx file on teacher's drive.
  4. For each loop : CREATE A FOLDER named with students's email (or name from xlsx file) Grant access to the student (edit mode).

Once again, i have to get the new folder's ID...

 

fig3.png

 

Your advices are welcome ;-).

Arnaud.

Good evening,

 

I think i have understood :

- the 'Listname' is a SP List in which you have written the name of the folder ? If it's correct, is there a way not to use a SP List ?
This or something like below could be a clue/way ? 

_api/V2.0/drive/root/Documents/{id of the folder}......

- using 'data operations', i got the ID of my new folder i was looking for ;-).

 

Thanks !

 

Hello,

 

I've gone forward
I am able to create one folder per student listed in excel file and grant edit access.

So i have decided to choose a way between the two i mentioned ; the flow must :

- create a folder named 'works' (for example...),

- break inheritance for it,

- create one subfolder per student in it,-

- grant edit access for each folder/student.

 

I am near from the solution, but Break inheritance is the last point i fall.

It seems that the process is too long, and ends by time-out. I had a look in 'result' and i saw : 'bad gateway'.

Could anyone give me a clue about this ?

 

fig4.png

 

Thank you,

Arnaud.

 

I have solved it.

My Uri wal bad formatted.

Now, my flow works !

Thanks.

Hey there,

 

dear @sudharsan1985 

Please help me too 🙂

 

i have been following your guides on removing user access removal from a sharepoint list item, but i receive following error

delicatebeing1_0-1718186123308.png

delicatebeing1_1-1718186153044.png

delicatebeing1_2-1718186168591.png

 

 

 



Hi,

Based on the screenshot, the error is because the user claim id is not properly formed. Make sure you are passing the users claim id properly.

Hope it helps, please like it or mark it as a solution if it resolves your clarification or issue
-Sudharsan K...

do you mind if I ask further elaboration on how to generate a proper user claim id?


What I did, plainly selecting assigned user email in a sharepoint list. And user id is something dynamic for me as the assignee for a SP item will always tend to be unique users.
My purpose here is to remove access of a specialist who needs temporarily access to edit an item, once he is done, his access is to removed acc to my flow. Which is why I created a SP group where specialists are dragged in, using the related group id too
Further, did I also arrange a proper coding for removing user permission as on the screen shot?

delicatebeing1_1-1718192024411.png

 

 

delicatebeing1
Frequent Visitor

dear @sudharsan1985 

 

so I have such a SP group that authorizes invited external specialists by adding in this group ( grant access + https commands)

 

All I need is to remove a user attributed with a certain sharepoint item, once he is done with editing. On the other hand another owner group, on me, for regulating all that stuff

delicatebeing1_0-1718194073456.png

delicatebeing1_1-1718194188080.png

 

 

Helpful resources

Announcements

Community will be READ ONLY July 16th, 5p PDT -July 22nd

Dear Community Members,   We'd like to let you know of an upcoming change to the community platform: starting July 16th, the platform will transition to a READ ONLY mode until July 22nd.   During this period, members will not be able to Kudo, Comment, or Reply to any posts.   On July 22nd, please be on the lookout for a message sent to the email address registered on your community profile. This email is crucial as it will contain your unique code and link to register for the new platform encompassing all of the communities.   What to Expect in the New Community: A more unified experience where all products, including Power Apps, Power Automate, Copilot Studio, and Power Pages, will be accessible from one community.Community Blogs that you can syndicate and link to for automatic updates. We appreciate your understanding and cooperation during this transition. Stay tuned for the exciting new features and a seamless community experience ahead!

Summer of Solutions | Week 4 Results | Winners will be posted on July 24th

We are excited to announce the Summer of Solutions Challenge!    This challenge is kicking off on Monday, June 17th and will run for (4) weeks.  The challenge is open to all Power Platform (Power Apps, Power Automate, Copilot Studio & Power Pages) community members. We invite you to participate in a quest to provide solutions to as many questions as you can. Answers can be provided in all the communities.    Entry Period: This Challenge will consist of four weekly Entry Periods as follows (each an “Entry Period”)   - 12:00 a.m. PT on June 17, 2024 – 11:59 p.m. PT on June 23, 2024 - 12:00 a.m. PT on June 24, 2024 – 11:59 p.m. PT on June 30, 2024 - 12:00 a.m. PT on July 1, 2024 – 11:59 p.m. PT on July 7, 2024 - 12:00 a.m. PT on July 8, 2024 – 11:59 p.m. PT on July 14, 2024   Entries will be eligible for the Entry Period in which they are received and will not carryover to subsequent weekly entry periods.  You must enter into each weekly Entry Period separately.   How to Enter: We invite you to participate in a quest to provide "Accepted Solutions" to as many questions as you can. Answers can be provided in all the communities. Users must provide a solution which can be an “Accepted Solution” in the Forums in all of the communities and there are no limits to the number of “Accepted Solutions” that a member can provide for entries in this challenge, but each entry must be substantially unique and different.    Winner Selection and Prizes: At the end of each week, we will list the top ten (10) Community users which will consist of: 5 Community Members & 5 Super Users and they will advance to the final drawing. We will post each week in the News & Announcements the top 10 Solution providers.  At the end of the challenge, we will add all of the top 10 weekly names and enter them into a random drawing.  Then we will randomly select ten (10) winners (5 Community Members & 5 Super Users) from among all eligible entrants received across all weekly Entry Periods to receive the prize listed below. If a winner declines, we will draw again at random for the next winner.  A user will only be able to win once overall. If they are drawn multiple times, another user will be drawn at random.  Individuals will be contacted before the announcement with the opportunity to claim or deny the prize.  Once all of the winners have been notified, we will post in the News & Announcements of each community with the list of winners.   Each winner will receive one (1) Pass to the Power Platform Conference in Las Vegas, Sep. 18-20, 2024 ($1800 value). NOTE: Prize is for conference attendance only and any other costs such as airfare, lodging, transportation, and food are the sole responsibility of the winner. Tickets are not transferable to any other party or to next year’s event.   ** PLEASE SEE THE ATTACHED RULES for this CHALLENGE**   Week 1 Results: Congratulations to the Week 1 qualifiers, you are being entered in the random drawing that will take place at the end of the challenge.   Community MembersNumber SolutionsSuper UsersNumber Solutions Deenuji 9 @NathanAlvares24  17 @Anil_g  7 @ManishSolanki  13 @eetuRobo  5 @David_MA  10 @VishnuReddy1997  5 @SpongYe  9JhonatanOB19932 (tie) @Nived_Nambiar  8 @maltie  2 (tie)   @PA-Noob  2 (tie)   @LukeMcG  2 (tie)   @tgut03  2 (tie)       Week 2 Results: Congratulations to the Week 2 qualifiers, you are being entered in the random drawing that will take place at the end of the challenge. Week 2: Community MembersSolutionsSuper UsersSolutionsPower Automate  @Deenuji  12@ManishSolanki 19 @Anil_g  10 @NathanAlvares24  17 @VishnuReddy1997  6 @Expiscornovus  10 @Tjan  5 @Nived_Nambiar  10 @eetuRobo  3 @SudeepGhatakNZ 8     Week 3 Results: Congratulations to the Week 3 qualifiers, you are being entered in the random drawing that will take place at the end of the challenge. Week 3:Community MembersSolutionsSuper UsersSolutionsPower Automate Deenuji32ManishSolanki55VishnuReddy199724NathanAlvares2444Anil_g22SudeepGhatakNZ40eetuRobo18Nived_Nambiar28Tjan8David_MA22   Week 4 Results: Congratulations to the Week 4 qualifiers, you are being entered in the random drawing that will take place at the end of the challenge. Week 4:Community MembersSolutionsSuper UsersSolutionsPower Automate Deenuji11FLMike31Sayan11ManishSolanki16VishnuReddy199710creativeopinion14Akshansh-Sharma3SudeepGhatakNZ7claudiovc2CFernandes5 misc2Nived_Nambiar5 Usernametwice232rzaneti5 eetuRobo2   Anil_g2   SharonS2  

Check Out | 2024 Release Wave 2 Plans for Microsoft Dynamics 365 and Microsoft Power Platform

On July 16, 2024, we published the 2024 release wave 2 plans for Microsoft Dynamics 365 and Microsoft Power Platform. These plans are a compilation of the new capabilities planned to be released between October 2024 to March 2025. This release introduces a wealth of new features designed to enhance customer understanding and improve overall user experience, showcasing our dedication to driving digital transformation for our customers and partners.    The upcoming wave is centered around utilizing advanced AI and Microsoft Copilot technologies to enhance user productivity and streamline operations across diverse business applications. These enhancements include intelligent automation, AI-powered insights, and immersive user experiences that are designed to break down barriers between data, insights, and individuals. Watch a summary of the release highlights.    Discover the latest features that empower organizations to operate more efficiently and adaptively. From AI-driven sales insights and customer service enhancements to predictive analytics in supply chain management and autonomous financial processes, the new capabilities enable businesses to proactively address challenges and capitalize on opportunities.    

Updates to Transitions in the Power Platform Communities

We're embarking on a journey to enhance your experience by transitioning to a new community platform. Our team has been diligently working to create a fresh community site, leveraging the very Dynamics 365 and Power Platform tools our community advocates for.  We started this journey with transitioning Copilot Studio forums and blogs in June. The move marks the beginning of a new chapter, and we're eager for you to be a part of it. The rest of the Power Platform product sites will be moving over this summer.   Stay tuned for more updates as we get closer to the launch. We can't wait to welcome you to our new community space, designed with you in mind. Let's connect, learn, and grow together.   Here's to new beginnings and endless possibilities!   If you have any questions, observations or concerns throughout this process please go to https://aka.ms/PPCommSupport.   To stay up to date on the latest details of this migration and other important Community updates subscribe to our News and Announcements forums: Copilot Studio, Power Apps, Power Automate, Power Pages

Users online (1,072)